-
I put out a short (hopefully fun) challenge yesterday. The encoding chain in the challenge was: Base32 > zlib inflate > Morse > ROT13 I made a video showing how easy CyberChef makes those transforms.
#DailyDFIR 34: The CyberChef "Magic" button is, well, magic!
#DFIR pic.twitter.com/tHQoUi4NVKPrikaži ovu nit -
From what I've seen, some
#DFIR work is not complete and/or the result of misinterpretation of data. Much like the available report, however, that "work" also passes mgr review. So, where's the issue? -
"behind the scenes" truths of the industry, and referring to those reviews as "arm-chair quarterbacking" is disingenuous, and ultimately does a disservice to those who seek out and purchase such services. (2/2)
#DFIRPrikaži ovu nit -
Memlabs Memory Forensics Challenges - Lab 1 Write-up. A memory forensics
#DFIR#ctf from@_abhiramkumar and@teambi0s https://www.petermstewart.net/memlabs-memory-forensics-challenges-lab-1-write-up/ … -
Getting DNS Client Cached Entries with CIM/WMI http://dlvr.it/RPJRcc
#blueteam#cybersecurity#DFIR -
Belkasoft employs a neural network algorithm to detect pornographic content on photos and videos. This function could become a great time saver when you work with massive sets of images. Get to know this BEC function in our article https://belkasoft.com/pornography-detection …
#DFIR pic.twitter.com/JGgfkUWhOL
-
[PDF] Analysis and design of Digital Forensics and Incident Response procedure http://oa.upm.es/55623/1/TFM_JAVIER_MARTINEZ_LLAMAS.pdf …
#DFIR -
IF you got yourself a shiny Windows 10 environment & wanna find some malwares running in an elevated context, run a historical sweep for
parent process = “wsreset.exe”
process = !”mmc.exe”,!”reg.exe”
#threatintel#threathunting#dfir -
Want to learn more about using Volatility for memory forensics? Curious about Volatility 3? Download our FREE Volatility Analyst Reference today.
#DFIR#ITSecurityhttp://www.appliedincidentresponse.com -
Reading some of the reviews of the leaked report regarding Bezos' iPhone, it occurs that this may be the worst nightmare ever for a large portion of the
#DFIR community...that their work is open and exposed. One write-up even states... (1/2)Prikaži ovu nit -
Security ML models encoded as Yara rules http://dlvr.it/RPFxNh
#blueteam#cybersecurity#DFIR pic.twitter.com/zUR3JJfkDX
-
TFW your Uber driver asks what you do and when you say Digital Forensics, not only do they know what it is, but they are looking to transition to
#DFIR. By the time I got to the airport I'd made a list of resources, trainings, & schools on the back of a receipt at his request <3 -
Attribution in investigations and false flag operations - some notes on
@MalwareJake#BlackHatEU 2019 great talk. If you are in#DFIR you should check out his talk. Maybe better INT sharing would help. https://buff.ly/2OeJzj9 -
We just hit 2500 assigned members in the Digital Forensics Discord Server! Come join an active
#DFIR community in real time using any of the mobile/desktop apps or your web browser! Looking forward to seeing you there! https://discord.gg/pNMZunG -
#FF#DFIR MUS speakers:@AlexisBrignoni@i_am_the_gia@binaryz0ne@tmesick1@bigt252002@warren_kruse @SJC_CyberCrime@BriannaDrummon4@OSINTlabworks@CindyMurph@jtrajewski@brianjmoran@Stanley142@SwiftForensics@nerdiosity@LitMoose@Forensic_matt@HECFBlogPrikaži ovu nit -
tenzir/threatbus:
The missing link to connect open-source threat intelligence tools (a real-time pub/sub broker to get intelligence/indicators from MISPProject and feed your Zeekurity in real-time & get sightings from… http://dlvr.it/RP7XxC #blueteam#cybersecurity#DFIR pic.twitter.com/9ZmAjyi4Hq
-
It was an honour to have the opportunity to speak at the 6th annual International Cybercrime Workshop in Turkey this week.
#triage#dfir pic.twitter.com/dLgIiejDfm
-
We're happy to announce our attendance at
@gcfriyadh in Riyadh. Our CEO@j3ssgarcia and other@One_eSecurity members are looking forward to meeting our existing customers and having the opportunity to offer our highly specialized#DFIR services to new ones.#GCFRiyad -
Tsurugi Linux- Installation and configuration
#DFIR https://medium.com/@inquisitorh3x/tsurugi-setting-up-your-environment-9e3a9225f380 … -
#Malware that hides commands in Metadata of Office Documents#DFIR https://research.checkpoint.com/2019/rancor-the-year-of-the-phish/ …pic.twitter.com/Zc9WOIAezA
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.